Starter
For side projects.
$9/mo
- Shared IP pair
- 50,000 requests
- 20 GB bandwidth
- HTTP, SOCKS5, and tunnel CLI
- Usage alerts
FIXEDMARK · STATIC IP PROXY · EARLY ACCESS
Fixedmark sends your app's outbound traffic from two fixed IPv4 addresses reserved for you. Allowlist them once with your bank, broker, database, or partner API. Keep deploying where you deploy now.
Not live yet. Planned pricing: free tier, dedicated IP pair from $29/mo.
203.0.113.24How Fixedmark's planned launch compares with QuotaGuard, Fixie, and an AWS NAT Gateway.
The planned Pro plan includes a dedicated IP pair. QuotaGuard's cheapest dedicated-IP plan is $219/mo, per its pricing page in October 2026.
Compare with QuotaGuardCall APIs over HTTP CONNECT and reach databases over SOCKS5 with the same IPs. Fixie sells HTTP and SOCKS5 as separate subscriptions.
Compare with FixieMumbai, Chennai, and Bangalore sit close to Indian bank, UPI, and broker APIs, with rupee pricing for SEBI algo traders. Singapore, Jakarta, Tokyo, Sydney, Frankfurt, New York, and Virginia too.
Static IP for algo tradingTLS passes through end to end and is never decrypted. The proxy endpoint itself uses TLS, so your proxy credentials are never sent in cleartext.
How the proxy handles TLSAn AWS NAT Gateway only works for compute in your own VPC. Two of them cost about $73/mo in us-east-1 before any traffic.
NAT Gateway cost calculatorFixedmark is a static outbound IP proxy for serverless and PaaS apps. Your app sends HTTP, HTTPS, and SOCKS5 traffic through one proxy URL. Every request leaves from the same pair of IPv4 addresses. Allowlist the pair once. It stays the same across deploys, scaling, and platform moves.
Give banks, brokers, and partner APIs one IP pair. It does not change when you redeploy.
Stay on Vercel, Heroku, Railway, Render, Supabase, or Fly.io. Add one environment variable.
Connect to IP-restricted APIs over HTTPS and to databases like Postgres and MongoDB over SOCKS5.
Get a static outbound IP in three steps.
Pick a region such as Mumbai or Frankfurt and get your IP pair.
Set FIXEDMARK_PROXY_URL and pass it to your HTTP client.
Add both IPs to the service you are connecting to.
curl --proxy "$FIXEDMARK_PROXY_URL" \
https://api.example.com/v1/statusimport { fetch, ProxyAgent } from "undici";
const dispatcher = new ProxyAgent(process.env.FIXEDMARK_PROXY_URL);
const res = await fetch("https://api.example.com/v1/status", {
dispatcher,
});
console.log(res.status);import os
import requests
proxy = os.environ["FIXEDMARK_PROXY_URL"]
res = requests.get(
"https://api.example.com/v1/status",
proxies={"http": proxy, "https": proxy},
)
print(res.status_code)// Run with: HTTPS_PROXY="$FIXEDMARK_PROXY_URL" go run .
package main
import (
"fmt"
"net/http"
)
func main() {
client := &http.Client{
Transport: &http.Transport{Proxy: http.ProxyFromEnvironment},
}
res, err := client.Get("https://api.example.com/v1/status")
if err != nil {
panic(err)
}
defer res.Body.Close()
fmt.Println(res.Status)
}Set FIXEDMARK_PROXY_URL and pass it to your HTTP client. Use HTTP CONNECT over a TLS proxy endpoint for APIs. Use SOCKS5 for databases and other TCP services.
Common reasons teams need a fixed outbound IP.
Register a dedicated static IP with your broker for SEBI API rules.
Reach payment and banking APIs that only accept allowlisted IPs.
Replace 0.0.0.0/0 in your Atlas access list with two fixed IPs.
Connect to IP-restricted databases over SOCKS5 or the tunnel CLI.
Give partners one IP pair to allowlist, whatever platform you deploy on.
Keep agents, cron jobs, and n8n workflows on a consistent IP.
Nothing is live yet. These features are planned for the first public version. Some depend on the plan.
Two static IPv4 addresses reserved for your account only, load-balanced for high availability. Allowlist both once.
HTTP CONNECT for APIs and SOCKS5 for databases, SSH, and any TCP service. One subscription, one set of IPs.
TLS passes through end to end and is never decrypted. A TLS-wrapped proxy endpoint keeps your proxy credentials off the wire in cleartext.
Mumbai, Chennai, and Bangalore, plus Singapore, Jakarta, Tokyo, Sydney, Frankfurt, and the US, for low latency to Indian bank, broker, and partner APIs.
See destination, SNI, bytes, egress IP, and result for every connection, so allowlist errors are easy to debug.
Restrict each token to the hosts and ports it needs, such as api.razorpay.com:443. A leaked token cannot reach anything else.
Forward local ports to IP-restricted databases for drivers without proxy support. Works from a local config file with no startup API call.
Soft limits with alerts before you hit them, plus webhooks for quota and IP health events.
Planned dashboard: your IPs, proxy URL, and usage in one place.
Interactive preview with example data and documentation-only IP addresses. It does not connect to a live account.
Planned launch regions: Mumbai, Chennai, Bangalore, Singapore, Jakarta, Tokyo, Sydney, Frankfurt, New York, and Virginia. Pick the region nearest the API or database you call.
In USD per month. Subject to change before launch.
For side projects.
$9/mo
For production apps.
$29/mo
For teams with compliance needs.
$79/mo
Free and Scale plans are also planned. Compare all planned plans
Fixedmark is a static outbound IP proxy for serverless and PaaS apps, operated by BitMask LLP in India. Your app sends outbound requests through a Fixedmark proxy URL, and they leave from two fixed IPv4 addresses that you allowlist once. It is in early access and not yet live.
It is the fixed public address other services see when your app makes a request. By default, serverless and PaaS platforms send traffic from shared IPs that change, so a bank, broker, database, or partner API cannot allowlist them. A static outbound IP stays the same across deploys.
Route the requests that need a fixed IP through a proxy. With Fixedmark, set FIXEDMARK_PROXY_URL as an environment variable, pass it to your HTTP client, and add your two Fixedmark IPs to the destination's allowlist. The same setup works on Render, Supabase Edge Functions, Fly.io, and AWS Lambda.
Fixedmark plans a dedicated IP pair on the $29/mo Pro plan. QuotaGuard's cheapest dedicated-IP plan is $219/mo. Fixie sells HTTP and SOCKS5 as separate subscriptions; Fixedmark includes both in one plan. A NAT Gateway only works inside your own AWS VPC, and two of them cost about $73/mo before traffic.
A shared IP is used by several customers, so anyone on it passes the same allowlist. A dedicated IP is reserved for your account. On the planned plans, Free and Starter use a shared IP pair. Pro and above use a dedicated pair, which brokers and banks often require.
Yes. Every plan includes SOCKS5, which carries any TCP connection, including Postgres, MySQL, MongoDB Atlas, Redis, and SSH. For drivers without proxy support, the bm tunnel CLI on paid plans forwards a local port to the IP-restricted database.
No. HTTPS passes through as an encrypted TLS tunnel from your app to the destination, so Fixedmark never sees request bodies, headers, or API keys. Connection logs record metadata only: destination host, SNI, bytes, egress IP, and result.
No. Fixedmark is in early access and not generally available. Join the early access list to get an endpoint when your region opens. Pricing is planned and may change before launch.
Fixedmark is in early access. Join the list to get a dedicated static IP pair when your region opens.